Our commitment to lawful, secure, and transparent data processing
This GDPR compliance documentation outlines how Aura HR, a software-as-a-service (SaaS) platform operated by Aurelium Technologies, ensures the lawful, secure, and transparent processing of personal data in alignment with the General Data Protection Regulation (EU) 2016/679 ("GDPR").
Aura HR is an AI-powered virtual HR assistant designed to automate and enhance HR support for client organizations. Through natural language interaction, Aura helps employees and HR teams access company policies, labor law guidance, and other HR services around the clock.
Aura HR has designed its platform to ensure complete EU data sovereignty. Unlike many AI platforms that rely on third-party APIs located outside the EU, Aura operates proprietary AI models hosted exclusively on AWS infrastructure within European Union regions.
Aura HR processes personal data on behalf of client organizations. Categories include:
Note: Aura HR does not process or store sensitive categories of personal data (e.g., health data, biometric data).
We process personal data lawfully under the following legal bases:
Data subjects have the following rights:
For employees: Contact your HR department to exercise these rights.
For client administrators: Contact us at ask@aurelium.tech
| Data Type | Retention Period |
|---|---|
| User profile data | Active account duration |
| Chat interaction logs | 12 months |
| Uploaded documents (original) | Deleted immediately after processing |
| Vectorized data | Duration of client contract |
| Access & audit logs | 12 months |
We implement comprehensive security controls:
We work with carefully selected subprocessors, all operating within the EU:
All subprocessors are bound by Data Processing Agreements (DPAs) with strict privacy and security obligations.
In the event of a personal data breach, Aura HR will notify affected client organizations without undue delay, and within 48 hours of confirmation. We maintain a structured Incident Response Plan with clearly defined roles and escalation paths.
For questions about our GDPR compliance or to exercise your rights, please contact:
Email: ask@aurelium.tech
Our team is here to help you understand how we protect your data.
Contact Us